CCPA / CPRA → NIS2 crosswalk
A control-by-control mapping between California Consumer Privacy Act (as amended by CPRA) and NIS2 Directive (EU 2022/2555). 2 mappings.
| CCPA / CPRA | NIS2 | Relationship | Notes |
|---|---|---|---|
| §1798.100 Consumers' right to know and notice at collection | Art. 21(2)(a) Risk analysis and information system security policies | RelatedCurated | Governance & security policy |
| §1798.150 Duty to implement reasonable security | Art. 21(2)(a) Risk analysis and information system security policies | RelatedCurated | Risk assessment & management |
Mappings marked “Official” derive from standards-body informative references; “Curated” mappings are authored by Cyber Compliance and provided for guidance only.